CVE-2025-45583
critical · 9.1Incorrect access control in the FTP protocol of Audi UTR 2.0 Universal Traffic Recorder 2.0 allows attackers to authenticate into the service using any combination of username and password.
9.1
CVSS
0.4%
EPSS (exploit prob.)
30th
EPSS percentile
2025-09-12
Published
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
Weaknesses
CWE-287
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| audi | universal_traffic_recorder_firmware | 1.52 |
| audi | universal_traffic_recorder | 2.0 |
Check a specific version with /api/v1/cve/match.
References
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2025-45583